Security Intelligence Engineer, AWS Threat Intelligence

Security Intelligence Engineer, AWS Threat Intelligence

13 Feb 2024
New York, New york city 00000 New york city USA

Security Intelligence Engineer, AWS Threat Intelligence

DescriptionThe AWS Threat Intelligence team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable intelligence on advanced cyber threats to AWS services and AWS customers. We obtain indicators and intelligence from a variety of internal and external sources and use that information to develop an understanding of sophisticated actors and their tools, techniques, and procedures. We then leverage that understanding to proactively identify and mitigate malicious activity.The successful candidate will analyze indicators to generate actionable intelligence and insight into current threats. As a Security Intelligence Engineer, you will help enhance our capabilities by formulating new analytic techniques and working across teams to drive the supporting capabilities. A deep understanding of current cyber threat actors and TTPs as well as experience performing question-driven analysis is required. You will leverage your understanding of networking- and host-based indicators, digital forensics, and database querying as you investigate incidents and threats as well.Key job responsibilities

Perform deep dive analysis of malicious artifacts.

Analyze large and unstructured data sets to identify trends and anomalies indicative of malicious activities.

Create security techniques and automation for internal use that enable you to operate at high speed and broad scale.

Provide situational awareness on the current threat landscape and the techniques, tactics and procedures associated with specific threats.

Pursue actionable intelligence on current threats as they relate to AWS.

Periodic on-call responsibilities.

About the teamAbout Amazon SecurityDiverse ExperiencesAmazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Why Amazon Security?At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.Inclusive Team CultureIn Amazon Security, it’s in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness. Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.Training & Career GrowthWe’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.Work/Life BalanceWe value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve.We are open to hiring candidates to work out of one of the following locations:Annapolis Junction, MD, USA | Arlington, VA, USA | Austin, TX, USA | Herndon, VA, USA | New York, NY, USA | Seattle, WA, USABasic Qualifications

BS degree in Computer Science, Management of Information Systems (MIS), Computer Engineering, or similar degree, or 3+ years equivalent technology experience without a degree

3 years experience with tracking high-sophistication cyber threat groups

3 years experience across system security, network security, application security, and/or digital forensics

2 years experience with SQL or other query languages.

Preferred Qualifications

MS degree in Computer Science, Management of Information Systems (MIS), Computer Engineering, or similar degree

Strong understanding of Windows, Linux, and or OS X internals

Experience with malware analysis, network flow analysis, and large scale data analysis.

Experience with modern threat intelligence platforms (TIPs)

Experience with AWS services

Meets/exceeds Amazon’s leadership principles requirements for this role

Meets/exceeds Amazon’s functional/technical depth and complexity for this role

Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit https://www.amazon.jobs/en/disability/us.Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $135,500/year in our lowest geographic market up to $212,800/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. This position will remain posted until filled. Applicants should apply via our internal or external career site.

Related jobs

Job Details

Jocancy Online Job Portal by jobSearchi.